WhatFinger

Following in the footsteps of VPNFilter, new firmware obscures hackers' endpoints.

Malware turns home routers into proxies for Chinese state-sponsored hackers


News on the Net image

By -- ars TECHNICA —— Bio and Archives May 17, 2023

Comments | Print This | Subscribe | Email Us

Researchers on Tuesday unveiled a major discovery—malicious firmware that can wrangle a wide range of residential and small office routers into a network that stealthily relays traffic to command and control servers maintained by Chinese state-sponsored hackers.

A firmware implant, revealed in a write-up from Check Point Research, contains a full-featured backdoor that allows attackers to establish communications and file transfers with infected devices, remotely issue commands, and upload, download, and delete files. The implant came in the form of firmware images for TP-Link routers. The well-written C++ code, however, took pains to implement its functionality in a “firmware-agnostic” manner, meaning it would be trivial to modify it to run on other router models. ---More...




News on the Net -- ars TECHNICA -- Bio and Archives | Comments

News from around the world


Sponsored
!-- END RC STICKY -->